NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
59622 | CVE-2006-0893 | NOCC Webmail 1.0 allows remote attackers to obtain sensitive information via a direct request to (1) the profiles directory, which leaks e-mail addresses contained in filenames of profiles, and (2) the tmp directory, which lists names of uploaded attachments. | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View | |
59878 | CVE-2006-1156 | SQL injection vulnerability in manas tungare Site Membership Script before 8 March, 2006 allows remote attackers to execute arbitrary SQL commands via the Username parameter in login.asp. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View | |
60134 | CVE-2006-1425 | Cross-site scripting (XSS) vulnerability in track.php in phpmyfamily 1.4.1 allows remote attackers to inject arbitrary web script or HTML via the name parameter. | 2 | 4.3 | Medium | 2016-12-20 | 2016-10-17 | View | |
60390 | CVE-2006-1685 | Multiple SQL injection vulnerabilities in modules.php in APT-webshop-system 4.0 PRO, 3.0 BASIC, and 3.0 LIGHT allow remote attackers to execute arbitrary SQL commands via the (1) group, (2) seite, and (3) id parameter, possibly involving the artikel functionality. NOTE: this vulnerability also allows resultant path disclosure when the SQL queries are invalid. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
60646 | CVE-2006-1941 | Neon Responder 5.4 for LANsurveyor allows remote attackers to cause a denial of service (application outage) via a crafted Clock Synchronisation packet that triggers an access violation. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View |
Page 1352 of 17672, showing 5 records out of 88360 total, starting on record 6756, ending on 6760